What should I do if my master password is a reused passphrase across sites?
#1
I just realized my password manager's master password is a phrase I’ve used for other, less important logins years ago. I’m worried that if one of those old sites was breached, my entire vault could be at risk, even though the master password itself is strong. Has anyone else had to deal with this kind of credential recycling paranoia?
Reply
#2
Yep I had the same panic after a breach notice years ago. I swapped the master to something I never used elsewhere and kept it memorable but not repeated. I also turned on two factor authentication for the vault and set up a breach alert just in case anything leaks again.
Reply
#3
Im not sure it would leak that way since the master password isnt stored on the sites that get breached and the vault is encrypted end to end.
Reply
#4
I did something similar but still feel uneasy I keep the old login passwords in a separate notebook and only use the manager for new ones.
Reply
#5
Maybe the bigger issue isnt the master password so much as the habit of recycling anything at all Do you think the real risk is the password habit not the breach itself?
Reply


[-]
Quick Reply
Message
Type your reply to this message here.

Image Verification
Please enter the text contained within the image into the text box below it. This process is used to prevent automated spam bots.
Image Verification
(case insensitive)

Forum Jump: